CVE-2025-13486

CriticalHigh RiskPatched

Advanced Custom Fields: Extended Plugin XSS

CVSS Score

9.8

Severity

Critical

Exploit Intelligence

Weaponized

Yes

Detectable

Yes

CISA KEV

Not Listed

Risk Level

High Risk

Detection Sources

nuclei

Exploit Sources

github_poc

Get the Full Explanation

Sign in to get the plain English explanation including what systems are affected, how to fix it, and vendor advisory links.

Published: 12/3/2025